Vulnerabilities > TP Link

DATE CVE VULNERABILITY TITLE RISK
2020-01-07 CVE-2019-17147 Classic Buffer Overflow vulnerability in Tp-Link Tl-Wr841N Firmware 0.9.14.16
This vulnerability allows remote attackers to execute arbitrary code on affected installations of TP-LINK TL-WR841N routers.
network
low complexity
tp-link CWE-120
8.8
2019-11-13 CVE-2013-4654 Path Traversal vulnerability in Tp-Link Tl-1043Nd Firmware and Tl-Wdr4300 Firmware
Symlink Traversal vulnerability in TP-LINK TL-WDR4300 and TL-1043ND..
network
low complexity
tp-link CWE-22
critical
9.8
2019-10-25 CVE-2013-4848 Cross-Site Request Forgery (CSRF) vulnerability in Tp-Link Tl-Wdr4300 Firmware 3.13.31
TP-Link TL-WDR4300 version 3.13.31 has multiple CSRF vulnerabilities.
network
low complexity
tp-link CWE-352
8.8
2019-10-24 CVE-2019-13653 OS Command Injection vulnerability in Tp-Link M7350 Firmware 1.0.16
TP-Link M7350 devices through 1.0.16 Build 181220 Rel.1116n allow triggerPort OS Command Injection (issue 5 of 5).
network
low complexity
tp-link CWE-78
critical
9.8
2019-10-24 CVE-2019-13652 OS Command Injection vulnerability in Tp-Link M7350 Firmware 1.0.16
TP-Link M7350 devices through 1.0.16 Build 181220 Rel.1116n allow serviceName OS Command Injection (issue 4 of 5).
network
low complexity
tp-link CWE-78
critical
9.8
2019-10-24 CVE-2019-13651 OS Command Injection vulnerability in Tp-Link M7350 Firmware 1.0.16
TP-Link M7350 devices through 1.0.16 Build 181220 Rel.1116n allow portMappingProtocol OS Command Injection (issue 3 of 5).
network
low complexity
tp-link CWE-78
critical
9.8
2019-10-24 CVE-2019-13650 OS Command Injection vulnerability in Tp-Link M7350 Firmware 1.0.16
TP-Link M7350 devices through 1.0.16 Build 181220 Rel.1116n allow internalPort OS Command Injection (issue 2 of 5).
network
low complexity
tp-link CWE-78
critical
9.8
2019-10-24 CVE-2019-13649 OS Command Injection vulnerability in Tp-Link M7350 Firmware 1.0.16
TP-Link M7350 devices through 1.0.16 Build 181220 Rel.1116n allow externalPort OS Command Injection (issue 1 of 5).
network
low complexity
tp-link CWE-78
critical
9.8
2019-08-27 CVE-2019-13268 Improper Input Validation vulnerability in Tp-Link Archer C2 V1 Firmware and Archer C3200 V1 Firmware
TP-Link Archer C3200 V1 and Archer C2 V1 devices have Insufficient Compartmentalization between a host network and a guest network that are established by the same device.
low complexity
tp-link CWE-20
8.8
2019-08-27 CVE-2019-13267 Unspecified vulnerability in Tp-Link Archer C2 V1 Firmware and Archer C3200 V1 Firmware
TP-Link Archer C3200 V1 and Archer C2 V1 devices have Insufficient Compartmentalization between a host network and a guest network that are established by the same device.
low complexity
tp-link
8.8